InsideGroup
Privacy Policy
Last Updated: June 1, 2026 · Current version: https://insidegroup.ai/legal/privacy
This Privacy Policy explains how Zeitlos Ventures LLC (“InsideGroup,” “we,” “us,” or “our”) collects, uses, discloses, and protects information when you access or use our services, platform, websites, applications, group management tools, directories, messaging integrations, analytics tools, AI-enabled features, and related services (collectively, the “Services”).
This Privacy Policy should be read together with our Terms of Service, Data Processing Addendum, AI and Data Use Policy, Subprocessors page, Security page, and any applicable supplemental terms or policies.
1. Key Terms
“Group” means a group, community, channel, directory, list, event group, WhatsApp group, WhatsApp community, subgroup, or similar collection of people, profiles, messages, or related information managed, organized, accessed, or analyzed through the Services.
“Group Owner” means the person or organization that creates, connects, controls, administers, subscribes to, or otherwise manages one or more Groups through the Services.
“Member” means an individual who is added to, invited to, participates in, claims a profile in, connects an account for, appears in, or otherwise uses the Services in connection with a Group.
“Group Data” means information associated with a Group, including group names, descriptions, membership, roles, settings, messages, metadata, files, activity, directory fields, summaries, analytics, insights, and other information processed in connection with a Group.
“Member Data” means information associated with a Member, including name, contact information, profile information, linked identities, preferences, memberships, activity, account information, and information provided by or about a Member through the Services.
“Group-Scoped Member Record” means information about a Member that is provided, imported, synced, or generated in connection with a specific Group or Group Owner, where the Member has not claimed a profile, created an account, connected an account, or otherwise interacted directly with InsideGroup.
“Claimed Member Profile” means a profile, account, or platform-level identity that a Member claims, creates, activates, connects, or uses directly through InsideGroup.
“Platform Data” means information processed by InsideGroup to operate, secure, improve, analyze, support, and provide the Services, including authentication data, product usage data, security logs, diagnostics, AI interaction data, aggregated or de-identified information, and platform-level Member profile or preference data.
“Connected Account” means a third-party account, service, platform, or integration, such as WhatsApp, LinkedIn, Google, or another provider, that is connected to or used with the Services.
“AI Features” means features that use artificial intelligence, machine learning, large language models, automated analysis, summarization, classification, extraction, recommendation, generation, or similar technologies.
2. Information We Collect
We collect information in several ways.
2.1 Information You Provide
We may collect information that you provide directly to us, including:
name;
email address;
phone number;
profile information;
organization or group affiliation;
role or title;
biography or description;
preferences;
support messages;
billing or payment information;
information submitted through forms, onboarding flows, directories, or profile pages;
other information you choose to provide.
2.2 Information Provided by Group Owners
Group Owners may provide, import, or sync information about Groups and Members, including:
Member names;
contact information;
profile or directory fields;
group membership and role information;
group settings;
invitation or onboarding information;
custom fields;
messages or message metadata;
activity or engagement data;
notes, tags, classifications, or summaries.
Information provided by Group Owners about individuals who have not interacted directly with InsideGroup is generally processed as a Group-Scoped Member Record in connection with the applicable Group and Group Owner’s use of the Services.
A Group-Scoped Member Record is not the same as a Claimed Member Profile. We do not use unclaimed Group-Scoped Member Records to make individuals publicly discoverable across InsideGroup, create personal workspaces for them, or enable cross-Group platform features for them unless they claim a profile, create an account, connect an account, interact directly with InsideGroup, or otherwise opt into those features.
Group Owners are responsible for ensuring that they have the rights, permissions, notices, consents, or other lawful basis necessary to provide this information to InsideGroup and use the Services. In practical terms, this means that before you add, import, or sync a Member's information, you must already have that person's permission, or another lawful basis, to share it with InsideGroup and to have it processed through the Services. To support Group Owners in meeting these responsibilities, InsideGroup makes available a Data Processing Addendum, configuration settings, and supporting documentation.
2.3 Information from Members
Members may provide information by:
claiming or updating a profile;
joining or interacting with a Group;
responding to onboarding questions;
setting preferences;
connecting accounts;
using search, directory, messaging, or AI-enabled features;
communicating with InsideGroup or a Group Owner through the Services.
When a Member claims a profile, creates an account, connects an account, or otherwise uses platform-level features, InsideGroup may create or maintain a Claimed Member Profile associated with that Member.
2.4 Information from Connected Accounts and Third-Party Services
If you connect a Connected Account or authorize an integration, we may collect information from that account or service depending on your settings and the functionality you enable.
This may include information from services such as WhatsApp, LinkedIn, Google, email providers, calendar providers, payment providers, messaging platforms, hosting providers, analytics tools, AI providers, and other third-party services.
The information we receive depends on the third-party service, your permissions, and the features you use.
You may be able to revoke access to a Connected Account through the third-party service or through the Services, where supported.
2.5 Automatically Collected Information
When you use the Services, we may automatically collect information such as:
IP address;
browser type;
device type;
operating system;
pages or screens viewed;
referring URLs;
dates and times of access;
usage events;
clicks and interactions;
log data;
error reports;
approximate location inferred from IP address;
session data;
diagnostics and performance information.
We use this information to operate, secure, debug, analyze, and improve the Services.
2.6 Cookies and Similar Technologies
We may use cookies, local storage, and similar technologies that are necessary to operate the Services, keep you signed in, authenticate your account, remember preferences, improve security, and maintain basic service functionality.
We do not use cookies for third-party behavioral advertising.
You can configure your browser to refuse or delete cookies. However, if you disable necessary cookies or similar technologies, some parts of the Services may not function properly.
3. How We Use Information
We use information to:
provide, operate, maintain, and improve the Services;
create, manage, and authenticate accounts;
enable Group Owners to manage Groups;
enable Members to claim, update, and use profiles;
provide directories, search, analytics, summaries, classifications, and related features;
process invitations, onboarding, communications, and support requests;
connect and operate third-party integrations;
personalize and configure the Services;
enforce our Terms of Service and policies;
detect, prevent, and respond to fraud, abuse, security incidents, and technical issues;
comply with legal obligations;
communicate with you about the Services;
develop and improve features;
create aggregated, anonymized, or de-identified information.
For individuals who have not interacted directly with InsideGroup, our use of information is generally limited to providing, securing, supporting, and maintaining the Services for the applicable Group Owner and Group, complying with law, preventing abuse, honoring rights requests, maintaining service integrity, and other limited purposes described in this Privacy Policy.
Detailed terms for AI-enabled processing are provided in our AI and Data Use Policy.
4. How We Share Information
We may share information in the following ways.
4.1 With Group Owners
If you are associated with a Group, we may make information about you available to the applicable Group Owner and individuals authorized by the Group Owner to manage that Group, as reasonably necessary to provide the Services for that Group.
This may include profile information, contact information, membership status, directory fields, onboarding responses, Group-related activity, messages or message metadata, summaries, analytics, and operational insights related to the Group.
For unclaimed Group-Scoped Member Records, this sharing is generally limited to the applicable Group Owner, authorized Group managers, and service providers used to operate or support the relevant Group. We do not use unclaimed Group-Scoped Member Records to make Members broadly discoverable across unrelated Groups, or enable cross-Group platform features unless the Member claims a profile, creates an account, connects an account, uses platform-level features, or otherwise opts into such use, or unless we provide notice and an opportunity to opt out where permitted by applicable law.
Group Owners are responsible for using information made available through the Services lawfully, providing required notices, and obtaining any required permissions, consents, or other lawful basis.
4.2 With Members
Depending on Group settings and your choices, we may share certain Member information with other Members, such as profile information, directory fields, group membership, introductions, posts, messages, or other information made available through the Services.
We do not use unclaimed Group-Scoped Member Records to make a Member broadly discoverable across unrelated Groups or across InsideGroup unless the Member claims a profile, creates an account, connects an account, uses platform-level features, or otherwise opts into such use, or unless we provide notice and an opportunity to opt out where permitted by applicable law.
4.3 With Service Providers and Subprocessors
We may share information with vendors, service providers, and subprocessors that help us operate the Services, including providers of hosting, storage, security, analytics, communications, payment processing, customer support, AI infrastructure, messaging integrations, and other services.
These providers may process information on our behalf and are subject to contractual obligations appropriate to their role.
We may update our subprocessors from time to time as described in our Data Processing Addendum and Subprocessors page. Unless otherwise agreed in writing, we do not require separate consent before adding or replacing subprocessors. We will maintain an up-to-date list of subprocessors and will provide notice of new or replacement subprocessors by updating the Subprocessors page or by another reasonable method. Where required by applicable law or a customer agreement, customers will have a reasonable opportunity to object to a new or replacement subprocessor before it begins processing Personal Data on their behalf.
4.4 With Third-Party Services You Connect or Use
If you connect a third-party account or use an integration, we may share information with that third-party service as necessary to provide the Services.
For example, we may share information with messaging platforms, payment processors, identity providers, calendar providers, email providers, AI providers, or other services you choose to connect or use.
Third-party services are governed by their own terms and privacy policies.
4.5 Group Owner-Directed Sharing and Exports
A Group Owner may use available Service features to export, share, transmit, or connect Group Data or Member Data to third-party services or recipients for Group-related purposes.
The Group Owner is responsible for ensuring that it has the rights, notices, permissions, consents, or other lawful basis required for such sharing or export.
InsideGroup does not grant Group Owners rights in Group Data, Member Data, messages, profiles, or content that they do not otherwise have. We may refuse, limit, or disable exports, integrations, or sharing that we reasonably and in good faith determine may violate law, our Terms of Service, third-party platform rules, privacy rights, security requirements, confidentiality obligations, or the rights of others.
Subject to applicable law, this Privacy Policy, our Terms of Service, technical availability, and any applicable customer agreement, InsideGroup will provide Group Owners with a commercially reasonable means to export the Group Data, Group-Scoped Member Records, directory data, and other customer-provided or customer-controlled data that the Group Owner is authorized to access and export during the term and for a reasonable period following termination. This does not require InsideGroup to export platform security logs, internal analytics, derived system data, proprietary system data, Claimed Member Profiles or Member-controlled data outside the Group Owner’s authority, or data that cannot reasonably be exported without compromising security, privacy, confidentiality, third-party rights, or legal obligations.
4.6 Paid Features, Sponsored Opportunities, and Business Partnerships
We may offer paid features, sponsored opportunities, recruiting workflows, introductions, commercial partnerships, or other business services.
We do not disclose a Member’s personal contact information, private Member Data, private Group Data, or unclaimed Group-Scoped Member Records to sponsors, recruiters, advertisers, or other third parties for their own independent use unless the Member, Group Owner, or applicable customer authorizes the disclosure, or the disclosure is otherwise permitted by law and our agreements.
4.7 For Legal, Safety, and Compliance Reasons
We may disclose information if we believe it is necessary to:
comply with law, legal process, or governmental requests;
enforce our Terms of Service or other agreements;
protect the rights, property, safety, or security of InsideGroup, Group Owners, Members, third parties, or the public;
detect, prevent, or respond to fraud, abuse, security incidents, or technical issues.
4.8 Business Transfers
We may disclose or transfer information in connection with a merger, acquisition, financing, reorganization, sale of assets, bankruptcy, or similar transaction.
4.9 Aggregated, Anonymized, or De-Identified Information
We may use and share aggregated, anonymized, or de-identified information that does not reasonably identify an individual for analytics, research, product improvement, reporting, benchmarking, model evaluation, safety, and other lawful purposes.
5. Our Role: Group Owner Processing and Platform Processing
InsideGroup may process information in different roles depending on the context.
5.1 Processing on Behalf of Group Owners
When we process personal information on behalf of a Group Owner to provide Group management, directory, onboarding, analytics, messaging, or related services for that Group Owner’s Groups, the Group Owner may be the controller or business, and InsideGroup may act as a processor or service provider.
In those cases, our Data Processing Addendum or other applicable data processing terms may apply.
5.2 Platform-Level Processing
In other contexts, InsideGroup may process information for its own platform-level purposes, including:
account creation and authentication;
Claimed Member Profiles and preferences;
security and fraud prevention;
product analytics;
service operations;
support;
billing;
compliance;
platform improvement;
Connected Accounts;
optional cross-group or personal group-management features;
other Services provided directly to Members or individuals.
In these contexts, InsideGroup may act as an independent controller or business.
For individuals who have not interacted directly with InsideGroup, our platform-level processing is limited to what is reasonably necessary to provide, secure, support, and maintain the Services, comply with law, prevent abuse, honor rights requests, maintain suppression records, and maintain service integrity, unless and until the individual claims a profile, creates an account, connects an account, uses platform-level features, or otherwise opts into broader platform features, or we provide notice and an opportunity to opt out where permitted by applicable law.
6. Member Records and Member Profiles
A Group Owner may provide or sync information about individuals associated with a Group.
If you have not claimed a profile, created an account, connected an account, or otherwise interacted directly with InsideGroup, we treat this information as a Group-Scoped Member Record used to provide the Services to the applicable Group Owner and Group.
A Group-Scoped Member Record is not the same as a Claimed Member Profile. We do not use unclaimed Group-Scoped Member Records to make you publicly discoverable across InsideGroup, create a personal workspace for you, or enable cross-Group platform features for you unless you claim a profile, create an account, connect an account, interact directly with InsideGroup, or otherwise opt into those features, or unless we provide notice and an opportunity to opt out where permitted by applicable law.
If you claim a profile, create an account, connect an account, or use platform-level features, we may maintain a Claimed Member Profile and preferences associated with you, as described in this Privacy Policy. That profile may be reusable across Groups, subject to your settings, applicable law, and available product features.
If you leave or are removed from a Group, we may delete, restrict, anonymize, or retain information depending on whether the information is controlled by the Group Owner, controlled by InsideGroup, needed to provide the Services, required by law, or retained for security, audit, compliance, suppression, dispute resolution, or abuse-prevention purposes.
You may contact us to request access, correction, deletion, or restriction of your personal information.
7. Connected Accounts
If you connect a third-party account to the Services, we may access and process information from that account as necessary to provide the features you enable.
You may revoke access to a Connected Account where supported. After revocation, we may retain certain information where necessary to provide the Services, comply with law, resolve disputes, maintain security, enforce agreements, honor suppression requests, prevent abuse, or as otherwise described in this Privacy Policy.
We are not responsible for the privacy practices, security, or data handling of third-party services.
8. Communications
We may use your contact information to send:
service messages;
account or security notices;
Group-related notifications;
onboarding messages;
support communications;
product updates;
billing notices;
legal notices;
marketing communications, where permitted.
You may opt out of marketing communications where required by law. You may not be able to opt out of certain service, transactional, legal, or security messages.
If we support SMS, WhatsApp, email, or similar messaging programs, information collected through those programs will be used to provide the relevant communications and Services, subject to applicable law and platform rules.
9. Data Retention
We retain information only for as long as reasonably necessary for the purposes described in this Privacy Policy, including to provide the Services, support Group Owners and Members, maintain accounts and profiles, comply with legal obligations, resolve disputes, enforce agreements, maintain security, honor suppression requests, prevent abuse, and operate our business.
Retention periods vary depending on the type of information and context:
Group-Scoped Member Records are generally retained while the applicable Group Owner uses the Services for the relevant Group, and are deleted or anonymized within approximately 90 days after the relevant Group is deleted or the applicable customer relationship ends, unless longer retention is required or permitted for legal, security, audit, backup, suppression, dispute resolution, or abuse-prevention purposes.
Claimed Member Profiles are generally retained while the profile or account remains active, and are deleted or anonymized after a valid deletion request or account closure, unless retention is required or permitted for legal, security, audit, backup, suppression, dispute resolution, or abuse-prevention purposes.
Connected Account Data is generally retained while the Connected Account remains connected or as needed to provide the enabled feature. After disconnection, we delete or anonymize associated data within a reasonable period unless retention is required or permitted for legal, security, audit, backup, suppression, dispute resolution, or abuse-prevention purposes.
Security logs and technical records are generally retained for up to 12 months, unless longer retention is reasonably necessary for security, fraud prevention, investigation, legal compliance, or service integrity.
Backup copies are deleted on our normal backup rotation schedule, generally within 30 to 180 days, unless preserved for security, legal, or continuity reasons.
Billing, tax, accounting, and legal records may be retained for the periods required by applicable law.
We may retain aggregated, anonymized, or de-identified information for longer periods.
10. Security and Security Incidents
We use commercially reasonable technical and organizational measures designed to protect information processed through the Services.
However, no method of transmission over the Internet or electronic storage is completely secure. We cannot guarantee absolute security.
If we become aware of a security incident affecting personal information, we will investigate and take appropriate steps to contain, remediate, and address the incident.
Where we process Personal Data on behalf of a Group Owner, we will notify the applicable Group Owner without undue delay after becoming aware of a Data Security Breach, unless prohibited by law.
Where required by applicable law, we or the applicable Group Owner will notify affected individuals, regulators, or other parties.
You are responsible for protecting your devices, credentials, connected accounts, and access permissions.
11. International Data Transfers
We may process and store information in the United States and other countries where we or our service providers operate.
If information is transferred across borders, we use legally recognized transfer mechanisms where required by applicable law, which may include adequacy decisions, standard contractual clauses, the UK Addendum, the EU-U.S. Data Privacy Framework, or other lawful transfer mechanisms we determine appropriate under applicable law.
12. Your Rights and Choices
Depending on your location and applicable law, you may have rights to:
access personal information;
correct personal information;
delete personal information;
object to or restrict processing;
request portability;
withdraw consent where processing is based on consent;
opt out of certain processing or communications;
appeal certain decisions.
To exercise privacy rights, contact us at [email protected].
We may need to verify your identity before responding.
Where we process information as an independent controller or business, we will respond to your request directly as required by applicable law.
Where we process information as a processor or service provider on behalf of a Group Owner, we may need to coordinate with or refer the request to the applicable Group Owner. In those cases, we will provide reasonable assistance and take appropriate steps as required by applicable law, the Data Processing Addendum, and our role in the processing.
We may decline to act on, limit, or charge a reasonable fee for requests that are manifestly unfounded, excessive, repetitive, fraudulent, abusive, or not legally required, where permitted by applicable law.
13. Group Owner Responsibilities
Group Owners are responsible for:
providing required notices to Members;
obtaining required consents, permissions, or other lawful basis;
ensuring they have authority to add, import, connect, or process Group Data and Member Data;
responding to Member requests where legally required;
configuring Group settings appropriately;
ensuring authorized individuals use the Services lawfully;
complying with laws applicable to their Groups and use of the Services.
Group Owners should not upload, sync, or process information about Members unless they have a lawful basis and appropriate authority to do so.
14. Children
The Services are not intended for children under 16.
We do not knowingly collect personal information from children under 16.
If you believe a child under 16 has provided personal information to us, contact us and we will take appropriate steps.
15. Third-Party Websites and Services
The Services may contain links to or integrations with third-party websites, applications, platforms, or services.
We do not control and are not responsible for the privacy practices, content, security, or policies of third-party services. Your use of third-party services is subject to their own terms and privacy policies.
16. No Sale or Sharing for Behavioral Advertising
We do not sell personal information or share personal information for cross-context behavioral advertising as those terms are defined under applicable privacy laws.
We do not use personal information collected through the Services to serve third-party behavioral advertising.
If applicable privacy laws require additional notices, opt-outs, or choices, we will provide them as required.
This section does not prevent us from offering paid Services, sponsored opportunities, recruiting workflows, introductions, business partnerships, or other commercial features where the relevant disclosure is authorized by the applicable Member, Group Owner, customer, agreement, settings, or law.
17. AI-Enabled Processing
The Services may include AI-enabled features, such as summarization, classification, extraction, recommendations, search, or generation.
For Group-Scoped Member Records, AI-enabled processing is generally used to provide Services to the applicable Group Owner and Group, such as search, summaries, classifications, analytics, or operational insights.
We do not use unclaimed Group-Scoped Member Records to create cross-Group platform profiles or make Members discoverable outside the relevant Group unless the Member claims a profile, creates an account, connects an account, uses platform-level features, or otherwise opts into those features, or unless we provide notice and an opportunity to opt out where permitted by applicable law.
Additional details about how we use information with AI-enabled features are provided in our AI and Data Use Policy.
18. Changes to This Privacy Policy
We may update this Privacy Policy from time to time.
If we make material changes, we will provide notice as required by law or through reasonable means, such as posting the updated Privacy Policy, updating the “Last Updated” date, or notifying you through the Services.
Your continued use of the Services after the updated Privacy Policy becomes effective means you acknowledge the updated Privacy Policy. Where applicable law requires your affirmative consent to a material change, we will obtain that consent before the change applies to you.
19. Contact Us
If you have questions about this Privacy Policy or our privacy practices, contact us at:
InsideGroup (Zeitlos Ventures LLC) 244 Fifth Avenue, Suite V244, New York, NY 10001, USA [email protected]